All your APP_KEY are belong to us


Details
Hello folks!
Reviving this group with a new event att Fully Studios!
We have invited Martin Krisell to talk about a security issue he discovered and helped to fix.
"Having a Laravel app encryption key leaked is a serious security problem – but what is the effect of it and are we safe again after rotating the key? Let's see how an app key can lead to arbitrary code injection and server takeover."
If you have something to say and would like to talk in the future, just let me know, and we'll take things from there!
You can shoot me a message here on Meetup, or in the artisans-se slack:
[Invite link]
There will be eats & drinks, so step right up!
If you have preferences/allergies on food/drinks, let me know.
UPDATE
___
Agenda:
18.00
Doors
18.45
Introduction
19.00
Martin Krisell
From App Key to Root Shell
20.00
Wrapping up.
Hope to see you there!
// Mikael

All your APP_KEY are belong to us